{"id":7915,"date":"2021-07-06T08:45:44","date_gmt":"2021-07-06T12:45:44","guid":{"rendered":"https:\/\/www.technewsday.com\/?p=7915"},"modified":"2021-07-23T13:52:21","modified_gmt":"2021-07-23T17:52:21","slug":"ransomware-gang-behind-kaseya-attack-demands-70-million","status":"publish","type":"post","link":"https:\/\/technewsday.com\/staging\/ransomware-gang-behind-kaseya-attack-demands-70-million\/","title":{"rendered":"Ransomware Gang Behind Kaseya Attack Demands $70 Million"},"content":{"rendered":"\n<p>The ransomware group REvil, which has taken responsibility for the attack on the IT company Kaseya and its customers, has offered a universal decryption key at a record price of $70 million.<\/p>\n\n\n\n<p>Kaseya, a well-known business IT company, is the latest victim of REvil&#8217;s data encryption attack.<\/p>\n\n\n\n<p>The attack on Kaseya appears to be financially motivated, but its impact is similar to the Kremlin-backed attack on SolarWind&#8217;s Orion network management software.<\/p>\n\n\n\n<p>The attack exploited a zero-day or previously unknown vulnerability in the Kaseya VSA.<\/p>\n\n\n\n<p>U.S. President Joe Biden said the U.S. believed the Kremlin had nothing to do with the attack.<\/p>\n\n\n\n<p>On Sunday, Anne Neuberger, deputy national security adviser for cyber and new technologies, instructed victims to report incidents to the FBI&#8217;s IC3 (Internet Crime Complaint Center).<\/p>\n\n\n\n<p>VSA customers are advised to download the VSA detection tool, which helps security teams find REvil components on their networks.<\/p>\n\n\n\n<p>It is also recommended that VSA customers require multifactor authentication for each account, not just administrator accounts with high privileges.<\/p>\n\n\n\n<p>VSA customers were also urged to implement an authorization list to restrict communication with remote monitoring and management (RMM) capabilities to known IP address pairs and\/or to place RMM administrative interfaces behind a virtual private network (VPN) or firewall on a dedicated administrative network.<\/p>\n\n\n<p>For more information, read the <a href=\"https:\/\/www.zdnet.com\/article\/kaseya-ransomware-attack-us-launches-investigation-as-gang-demands-giant-70-million-payment\/\" target=\"_blank\" rel=\"noopener\">original story<\/a> in ZDNet.<\/p>","protected":false},"excerpt":{"rendered":"<p>The ransomware group REvil, which has taken responsibility for the attack on the IT company Kaseya, has offered a universal decryption key at a record price of $70 million.<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[16],"tags":[],"class_list":["post-7915","post","type-post","status-publish","format-standard","hentry","category-security"],"acf":[],"_links":{"self":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/7915","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/comments?post=7915"}],"version-history":[{"count":3,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/7915\/revisions"}],"predecessor-version":[{"id":7941,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/7915\/revisions\/7941"}],"wp:attachment":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/media?parent=7915"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/categories?post=7915"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/tags?post=7915"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}